CVE-2023-28304: Microsoft Odbc

High severity, CVSS 7.8. EPSS: 0.8% chance of exploitation in the next 30 days.

Microsoft ODBC and OLE DB Remote Code Execution Vulnerability

Affected products

  • Microsoft Odbc: from 17.0, before 17.10.3.1 (fixed in 17.10.3.1); from 18.0, before 18.2.1.1 (fixed in 18.2.1.1)
  • Microsoft Ole DB: from 18.0, before 18.6.5 (fixed in 18.6.5); from 19.1.0, before 19.3.0 (fixed in 19.3.0)

Published 2023-04-11. Last modified 2026-06-17.